Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3035▼ 39 respecto a la semana anterior
Críticas / altas1415▲ 62 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)385▼ 125 respecto a la semana anterior
357 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.1) | 0.51% | — | Cisco Prime InfrastructureCisco Evolved Programmable Network Manager | 15/11/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco PI and Cisco EPNM could allow an unauthenticated, remote attacker to conduct an XSS attack against a user of the interface of an affected device. This vulnerability exists because the web-based management interface does not properly validate… | |
| Analizada | Media (6.5) | 1.7% | — | Cisco Prime InfrastructureCisco Evolved Programmable Network Manager | 15/11/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco PI and Cisco EPNM could allow an authenticated, remote attacker to conduct a path traversal attack on an affected device. To exploit this vulnerability, the attacker must have valid credentials on the system. This vulnerability is due to… | |
| Analizada | Media (5.4) | 0.28% | — | Cisco Evolved Programmable Network ManagerCisco Prime Infrastructure | 6/11/2024 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Evolved Programmable Network Manager (EPNM) and Cisco Prime Infrastructure could allow an authenticated, low-privileged, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists… | |
| Analizada | Alta (7.1) | 0.39% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Allocation of Resources Without Limits or Throttling vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved allows an authenticated, network-based attacker to cause an FPC crash leading to a Denial of Service (DoS).When specific SNMP GET operations or specific low-priviledged… | |
| Analizada | Alta (7.1) | 0.39% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Allocation of Resources Without Limits or Throttling vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved allows an authenticated, network-based attacker to cause an FPC crash leading to a Denial of Service (DoS).When specific SNMP GET operations or specific low-priviledged… | |
| Analizada | Media (6.9) | 0.29% | — | Juniper JunosJuniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause an integrity impact to the downstream devices. When a peer sends a BGP update message which contains… | |
| Analizada | Alta (7.1) | 0.39% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Allocation of Resources Without Limits or Throttling vulnerability in the PFE management daemon (evo-pfemand) of Juniper Networks Junos OS Evolved allows an authenticated, network-based attacker to cause an FPC crash leading to a Denial of Service (DoS).When specific SNMP GET operations or specific low-priviledged… | |
| Analizada | Alta (8.7) | 0.64% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Allocation of Resources Without Limits or Throttling vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network based attacker to cause a Denial of Service (DoS). In specific cases the state of TCP sessions that are terminated is not cleared, which over time leads to an… | |
| Analizada | Alta (8.7) | 0.64% | — | Juniper JunosJuniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Improper Check for Unusual or Exceptional Conditions vulnerability in the routing protocol daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network based attacker to cause a Denial of Service (DoS). In a scenario where BGP Monitoring Protocol (BMP) is configured with rib-in… | |
| Analizada | Alta (7.1) | 0.33% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Unimplemented or Unsupported Feature in UI vulnerability in the CLI of Juniper Networks Junos OS Evolved on QFX5000 Series allows an unauthenticated, adjacent attacker to cause a Denial-of-Service (DoS). Several configuration statements meant to enforce limits on MAC learning and moves can be configured but do not… | |
| Analizada | Alta (8.4) | 0.21% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Authorization Bypass Through User-Controlled Key vulnerability allows a locally authenticated attacker with shell access to gain full control of the device when Dual Routing Engines (REs) are in use on Juniper Networks Junos OS Evolved devices. This issue does not affect Juniper Networks Junos OS. | |
| Analizada | Alta (8.2) | 0.60% | — | Juniper JunosJuniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Improper Handling of Exceptional Conditions vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a network-based, unauthenticated attacker to cause Denial of Service (DoS). When a BGP UPDATE with malformed path attribute is received over an established BGP… | |
| Analizada | Alta (7.7) | 0.58% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Improper Restriction of Communication Channel to Intended Endpoints vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows an unauthenticated, network based attacker to cause increased consumption of resources, ultimately resulting in a Denial of Service… | |
| Analizada | Media (6.9) | 0.66% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Improper Handling of Exceptional Conditions vulnerability in the Packet Forwarding Engine (pfe) of the Juniper Networks Junos OS Evolved on ACX Series devices allows an unauthenticated, network based attacker sending specific transit protocol traffic to cause a partial Denial of Service (DoS) to downstream devices.… | |
| Analizada | Media (5.1) | 0.20% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Incorrect Default Permissions vulnerability in the command line interface (CLI) of Juniper Networks Junos OS Evolved allows a low privileged local attacker to view NETCONF traceoptions files, representing an exposure of sensitive information. On all Junos OS Evolved platforms, when NETCONF traceoptions are… | |
| Analizada | Media (5.3) | 0.66% | — | Juniper Junos OS Evolved | 11/10/2024 | 17/6/2026 | An Incorrect Comparison vulnerability in the local address verification API of Juniper Networks Junos OS Evolved allows an unauthenticated network-adjacent attacker to create sessions or send traffic to the device using the network and broadcast address of the subnet assigned to an interface. This is unintended and… | |
| Analizada | Alta (7.1) | 0.37% | — | Juniper Junos OS EvolvedJuniper Junos | 11/10/2024 | 17/6/2026 | An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS on MX Series with MPC10/MPC11/LC9600 line cards, EX9200 with EX9200-15C lines cards, MX304 devices, and Juniper Networks Junos OS Evolved on PTX Series, allows an attacker sending malformed DHCP packets to… | |
| Analizada | Alta (8.7) | 0.43% | — | Juniper JunosJuniper Junos OS Evolved | 9/10/2024 | 17/6/2026 | An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker sending a specific BGP packet to cause rpd to crash and restart, resulting in a Denial of Service (DoS). Continued receipt… | |
| Analizada | Alta (8.7) | 0.43% | — | Juniper JunosJuniper Junos OS Evolved | 9/10/2024 | 17/6/2026 | An Out-of-Bounds Read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker sending a specifically malformed BGP packet to cause rpd to crash and restart, resulting in a Denial of Service (DoS). Continued receipt and… | |
| Analizada | Alta (8.7) | 0.46% | — | Juniper JunosJuniper Junos OS Evolved | 9/10/2024 | 17/6/2026 | An Improper Validation of Consistency within Input vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker sending a specifically malformed BGP packet to cause rpd to crash and restart, resulting in a Denial of Service (DoS).… | |
| Analizada | Media (6.9) | 0.40% | — | Juniper Junos OS Evolved | 11/7/2024 | 17/6/2026 | An Exposure of Resource to Wrong Sphere vulnerability in the sampling service of Juniper Networks Junos OS Evolved allows an unauthenticated network-based attacker to send arbitrary data to the device, which leads msvcsd process to crash with limited availability impacting Denial of Service (DoS) and allows… | |
| Analizada | Alta (8.7) | 0.59% | — | Juniper JunosJuniper Junos OS Evolved | 11/7/2024 | 17/6/2026 | An Improper Handling of Exceptional Conditions vulnerability in the routing protocol daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows a network based, unauthenticated attacker to cause the RPD process to crash leading to a Denial of Service (DoS). When a malformed BGP UPDATE packet is received… | |
| Modificada | Alta (8.7) | 0.47% | — | Juniper JunosJuniper Junos OS Evolved | 11/7/2024 | 17/6/2026 | A Missing Release of Memory after Effective Lifetime vulnerability in the routing process daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an attacker to send a malformed BGP Path attribute update which allocates memory used to log the bad path attribute. This memory is not properly freed in all… | |
| Analizada | Alta (7.1) | 0.49% | — | Juniper Junos OS Evolved | 11/7/2024 | 17/6/2026 | An Uncontrolled Resource Consumption vulnerability in the aftmand process of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to consume memory resources, resulting in a Denial of Service (DoS) condition. The processes do not recover on their own and must be manually restarted. This… | |
| Analizada | Alta (7) | 0.18% | — | Juniper Junos OS Evolved | 11/7/2024 | 17/6/2026 | A Missing Authorization vulnerability in the Socket Intercept (SI) command file interface of Juniper Networks Junos OS Evolved allows an authenticated, low-privilege local attacker to modify certain files, allowing the attacker to cause any command to execute with root privileges leading to privilege escalation… |